ndsetup.exe

Secpa Yazilim Bilgisayar Internet Tek. ve Ins.San. Tic.Ltd.Sti.

This is a setup and installation application.
Publisher:
WebAynet Software  (signed by Secpa Yazilim Bilgisayar Internet Tek. ve Ins.San. Tic.Ltd.Sti.)

Description:
WebAynet Internet Filter Setup

Version:
3.0.0.43

MD5:
4d853f380d1eceb949be50c0c0d63b53

SHA-1:
2386647864674d89b16fbb15ba149fc338ff2e04

SHA-256:
9b28eb8dc9ee2635d3df21816809a906eb7ed683bc2a333a25a0ce87443b2804

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 5:25:48 PM UTC  (today)

File size:
4.2 MB (4,451,392 bytes)

Product version:
3.0.0.43

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\ndsetup.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
2/12/2013 5:03:05 PM

Valid to:
2/13/2014 5:03:05 PM

Subject:
CN=Secpa Yazilim Bilgisayar Internet Tek. ve Ins.San. Tic.Ltd.Sti., O=Secpa Yazilim Bilgisayar Internet Tek. ve Ins.San. Tic.Ltd.Sti., L=Beylikduzu, S=Istanbul, C=TR

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121C0151F6D8DF30F48AA92AA553CB68ABA

File PE Metadata
Compilation timestamp:
5/11/2013 1:19:08 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:f8rG4nDKvMYqA2DTUDnGi5WhPZok6IdeJ1b1f4cTq0z:f+X35AwTUDnGbIkEnb1LTq0z

Entry address:
0x24AFD3

Entry point:
52, BA, 64, 00, 00, 00, 85, D2, 74, 1D, B9, 00, 10, 00, 00, 85, C9, 74, 07, 01, C8, 01, D8, 49, EB, F5, 52, 54, 54, FF, 15, 85, 13, BB, 00, 5A, 4A, EB, DF, 5A, E9, 00, 80, 78, 00, 00, 00, 00, 00, 64, 6A, AB, 42, 00, 00, 00, 00, 02, 00, 0A, 00, F8, 26, 00, 80, 70, 00, 00, 80, 22, 27, 00, 80, E0, 00, 00, 80, 01, 00, 00, 00, 10, 02, 00, 80, 02, 00, 00, 00, D0, 03, 00, 80, 03, 00, 00, 00, 20, 0C, 00, 80, 05, 00, 00, 00, 70, 0E, 00, 80, 06, 00, 00, 00, E0, 0E, 00, 80, 0A, 00, 00, 00, 40, 1C, 00, 80, 0C, 00, 00...
 
[+]

Code size:
5.2 MB (5,427,712 bytes)

Scan ndsetup.exe - Powered by Reason Core Security